From bd62d18db9f1fd406f2e058d9bcdb426b721cf64 Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Wed, 18 Jun 2025 17:09:23 +0000 Subject: [PATCH] fix: framework/requirements.txt to reduce vulnerabilities The following vulnerabilities are fixed by pinning transitive dependencies: - https://snyk.io/vuln/SNYK-PYTHON-PROTOBUF-10364902 --- framework/requirements.txt | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/framework/requirements.txt b/framework/requirements.txt index a16b80fd3f3..ccd6d9b041b 100644 --- a/framework/requirements.txt +++ b/framework/requirements.txt @@ -59,7 +59,7 @@ numpy==1.26.0 openapi-spec-validator==0.2.6 packaging==20.9 pathlib==1.0.1 -protobuf==3.19.6 +protobuf==4.25.8 proto-plus==1.19.0 psutil==5.9.0 pyarrow==13.0.0